paystatementonline.com

.com crawl

First seen 2026-04-27 · Last seen 2026-05-17 · ok HTTP/1.1 200 1101 ms crawled 2026-05-04

US · 100.50.213.162 · AS14618 Amazon.com, Inc.

Reputation 100/100

sector tech type homepage

HTML metadata

Title
PaymentPortal
Language
en

Technology

Server
Apache
Fonts
  • Google Fonts

Third-party hosts loaded (3)

  • fonts.googleapis.com×1
  • fonts.gstatic.com×1
  • static.sunbit.com×1

Registration

Registrar
MarkMonitor Inc.
Created
2014-08-14
Expires
2026-08-14 85 days left
Updated
2024-10-04
Name servers
  • arch.ns.cloudflare.com
  • may.ns.cloudflare.com

DNS records live

NS
  • arch.ns.cloudflare.com
  • may.ns.cloudflare.com
MX
  • 0 smtp.secureserver.net
  • 10 mailstore1.secureserver.net
TXT
  • rovag_verification_token=B36B80DAB6BA4BFEA7B1E2E62A297873

Certificate (current)

Amazon RSA 2048 M01
from 2026-01-16 to 2027-02-14
Expires in 269 days

HTTP security headers

Header hygiene 85/100 Checked live page: https://www.paystatementonline.com/

present
  • strict-transport-security
  • content-security-policy
  • x-frame-options
  • x-content-type-options
  • referrer-policy
  • permissions-policy
  • cross-origin-opener-policy
  • cross-origin-embedder-policy
  • cross-origin-resource-policy
findings
  • CSP allows unsafe inline scripts/styles
  • CSP uses wildcard sources
  • weak content type protection
Header values
referrer-policy
no-referrer
x-frame-options
DENY
permissions-policy
interest-cohort=()
x-content-type-options
nosniff, nosniff
content-security-policy
default-src 'self'; font-src https://fonts.googleapis.com https://fonts.gstatic.com data:; script-src 'self' https://www.google.com https://www.gstatic.com https://static.sunbit.com/sdk/sunbit-sdk.js; style-src 'self' 'unsafe-inline' https://fonts.googleapis.com; img-src 'self' data:; connect-src 'self' https://*.paygateway.com:* https://forms.myupdox.com/ https://forms.updoxqa.com/; frame-src https://*.paygateway.com https://*.sunbit.com https://go.collaboratemd.com https://www.google.com https://forms.myupdox.com/ https://forms.updoxqa.com/;
strict-transport-security
max-age=31536000 ; includeSubDomains
cross-origin-opener-policy
same-origin-allow-popups
cross-origin-embedder-policy
unsafe-none
cross-origin-resource-policy
same-origin

Linked from (2)